STIGQter STIGQter: STIG Summary: Juniper Router NDM Security Technical Implementation Guide Version: 1 Release: 5 Benchmark Date: 24 Jul 2020:

The Juniper router must be configured to send log data to a syslog server for the purpose of forwarding alerts to the administrators and the ISSO.

DISA Rule

SV-101295r2_rule

Vulnerability Number

V-91195

Group Title

SRG-APP-000516-NDM-000350

Rule Version

JUNI-ND-001440

Severity

CAT I

CCI(s)

Weight

10

Fix Recommendation

Configure the router to send log data to a syslog server as shown in the example below.

set syslog host x.x.x.x any info

Check Contents

Verify that the router is configured to send logs to a syslog server. The configuration should look similar to the example below:

system {
syslog {
host x.x.x.x {
any info;
}
}

If the router is not configured to send log data to the syslog server, this is a finding.

Vulnerability Number

V-91195

Documentable

False

Rule Version

JUNI-ND-001440

Severity Override Guidance

Verify that the router is configured to send logs to a syslog server. The configuration should look similar to the example below:

system {
syslog {
host x.x.x.x {
any info;
}
}

If the router is not configured to send log data to the syslog server, this is a finding.

Check Content Reference

M

Target Key

3381

Comments